Details

    • Type: Change Request
    • Status: Triaged (View Workflow)
    • Priority: Highest
    • Resolution: Not Persuasive
    • Specification:
      US Da Vinci HRex (FHIR)
    • Raised in Version:
      current
    • Work Group:
      Clinical Interoperability Council
    • Related Page(s):
      Approaches to Exchanging FHIR Data
    • Related Section(s):
      3.0.3.20 Subcription Capability
    • Grouping:
    • Resolution Description:
      Hide

      That language is covered elsewhere in the IG. It doesn't belong here where the focus is on architectural choices - and where the language is intendended to be independent of Da Vinci (and even country)

      Balloter is comfortable that the language added in the overview of the section, together with the existing privacy & security page is sufficient.  No further change required.

      Show
      That language is covered elsewhere in the IG. It doesn't belong here where the focus is on architectural choices - and where the language is intendended to be independent of Da Vinci (and even country) Balloter is comfortable that the language added in the overview of the section, together with the existing privacy & security page is sufficient.  No further change required.

      Description

      Add sentence

      Existing Wording:

      Subscription also involves an enhancement of the data source's security model because the authorization that is in place at the time the subscription is established will not necessarily be the same as what is in place when the subscription triggers a notification. For example, if a subscription is established with patient consent conveyed via an OAuth token, it is unlikely that the OAuth token will still be valid during the subsequent time-period when event notifications are triggered by the subscription. Consents may have changed, user privileges may have changed, etc. Also, the subscription notifications will be directed to a 'system', not necessarily a 'user'. The security design of the data source will have to take these differences into account.

      Proposed Wording:

      Add sentence: Implementers are strongly encouraged to coordinate with their organization’s legal and compliance office prior to establishing a subscription.

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              Unassigned Unassigned
              Reporter:
              celine_lefebvre Celine Lefebvre
              Request in-person:
              Celine Lefebvre
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: